CVE-2021-33477
20.05.2021, 20:15
rxvt-unicode 9.22, rxvt 2.7.10, mrxvt 0.5.4, and Eterm 0.9.7 allow (potentially remote) code execution because of improper handling of certain escape sequences (ESC G Q). A response is terminated by a newline.Enginsight
| Vendor | Product | Version |
|---|---|---|
| eterm_project | eterm | 0.9.7 |
| mrxvt_project | mrxvt | 0.5.4 |
| rxvt-unicode_project | rxvt-unicode | 9.22 |
| rxvt_project | rxvt | 2.7.10 |
| debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| eterm |
| ||||||||||||||||||||||||
| mrxvt |
| ||||||||||||||||||||||||
| rxvt |
| ||||||||||||||||||||||||
| rxvt-unicode |
|
Common Weakness Enumeration
References